7.8

CVE-2006-5231

Grandstream GXP-2000 VoIP Desktop Phone, firmware version 1.1.0.5, allows remote attackers to cause a denial of service (hang or reboot) via a large amount of ASCII data sent to port (1) 5060/UDP, (2) 5062/UDP, (3) 5064/UDP, (4) 5066/UDP, (5) 9876/UDP, or (6) 26789/UDP.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GrandstreamGxp-2000 Version1.1.0.5
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.06% 0.788
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://lists.grok.org.uk/pipermail/full-disclosure/2006-October/049876.html
http://secunia.com/advisories/22265
Patch
Vendor Advisory
http://securityreason.com/securityalert/1718
http://www.grandstream.com/BETATEST/GXP2000_BT200/Release_Note_GXP2000-BT200_1.1.1.14.pdf
http://www.securityfocus.com/bid/20356
http://www.vupen.com/english/advisories/2006/3941
https://exchange.xforce.ibmcloud.com/vulnerabilities/29356